Unwanted new desktop/user

Discussion in 'Malware Help (A Specialist Will Reply)' started by mac77mac, Oct 12, 2008.

  1. mac77mac

    mac77mac Private E-2

    I am running 2000 sp4. Comp has been running well until last few days. Mouse froze occasionally. Then today I logged on to my desktop, which appeared as if i was a new user. The comp has 2 regular users, both profiles are limited user level, the Admin. profile is only used for installation etc. never internet access. I found an extra user profile in Docs and Settings which has the same name as my profile but with the comp name appended (after . ) The new profile is not in Control Panel/Users. When I try to log in it always goes to the new profile, although the old one is still there. I ran PCtools antivirus full scan, Spybot S&D, Panda Active Scan, MS Live Online Scan and MS malware removal tool. I also have Comodo BOClean and Spyware Blaster installed. No scan found anything. I use a router with firewall and do all scans regularly and keep everything updated. I am baffled. I don't know whether this is a comp fault or malware. Your help would be most welcome.
     
  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Welcome to Major Geeks!


    Please follow the instructions in the below link and attach the requested logs when you finish these instructions.

    • If something does not run, write down the info to explain to us later but keep on going.
    • Do not assume that because one step does not work that they all will not.
    READ & RUN ME FIRST. Malware Removal Guide

    Notes:

    1. If you run into problems trying to run the READ & RUN ME or any of the scans in normal boot mode. You can running steps in safe boot mode but make sure you tell us what you did later when you post logs. See the below if you do not know how to boot in safe mode:
    2. If you have problems downloading on the problem PC, download the tools on another PC and burn to a CD. Then copy them to the problem PC. You will have to skip getting updates if (and only if) your internet connection does not work. Yes you could use a flash drive too but flash drives are writeable and infections can spread to them.
     
  3. mac77mac

    mac77mac Private E-2

    Ran scans requested here are the logs. No problems running any of them. Nothing found by Spybot S&D. Thanx. ATM
     

    Attached Files:

    Last edited: Oct 14, 2008
  4. mac77mac

    mac77mac Private E-2

    Part 2
     

    Attached Files:

  5. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Are you referring to this:
    Mac.EGSS-7FMFHGTSYZ

    If so, it means that a user profile got corrupt and this is the new user name for that profile....you can learn more in the software section. Basically you just need to delete the Mac user...then rename the Mac.EGSS-7FMFHGTSYZ as you cant have two user profiles with the same name.

    We can now clean up from running the scans as your system is clean:

    Copy the bold text below to notepad. Save it as fixME.reg to your desktop. Be sure the "Save as" type is set to "all files" Once you have saved it double click it and allow it to merge with the registry.
    Make sure that you tell me if you receive a success message about adding the above
    to the registry. If you do not get a success message, it definitely did not work.


    If you get a success message, then:
     
  6. mac77mac

    mac77mac Private E-2

    Yes, got a success message. Everything is working now. One odd thing happened, i had music files stored in C:\My Music, which i used for downloads. This is now empty. But machine is working fine (indeed fast!) so thank you very much for your help. Best wishes, Mac
     
  7. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You are quite welcome.....perhaps you should post in the software section for the missing music files......:)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds